ecc_curve_defs.h 5.4 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155
  1. /* SPDX-License-Identifier: GPL-2.0 */
  2. #ifndef _CRYTO_ECC_CURVE_DEFS_H
  3. #define _CRYTO_ECC_CURVE_DEFS_H
  4. /* NIST P-192: a = p - 3 */
  5. static u64 nist_p192_g_x[] = { 0xF4FF0AFD82FF1012ull, 0x7CBF20EB43A18800ull,
  6. 0x188DA80EB03090F6ull };
  7. static u64 nist_p192_g_y[] = { 0x73F977A11E794811ull, 0x631011ED6B24CDD5ull,
  8. 0x07192B95FFC8DA78ull };
  9. static u64 nist_p192_p[] = { 0xFFFFFFFFFFFFFFFFull, 0xFFFFFFFFFFFFFFFEull,
  10. 0xFFFFFFFFFFFFFFFFull };
  11. static u64 nist_p192_n[] = { 0x146BC9B1B4D22831ull, 0xFFFFFFFF99DEF836ull,
  12. 0xFFFFFFFFFFFFFFFFull };
  13. static u64 nist_p192_a[] = { 0xFFFFFFFFFFFFFFFCull, 0xFFFFFFFFFFFFFFFEull,
  14. 0xFFFFFFFFFFFFFFFFull };
  15. static u64 nist_p192_b[] = { 0xFEB8DEECC146B9B1ull, 0x0FA7E9AB72243049ull,
  16. 0x64210519E59C80E7ull };
  17. static struct ecc_curve nist_p192 = {
  18. .name = "nist_192",
  19. .nbits = 192,
  20. .g = {
  21. .x = nist_p192_g_x,
  22. .y = nist_p192_g_y,
  23. .ndigits = 3,
  24. },
  25. .p = nist_p192_p,
  26. .n = nist_p192_n,
  27. .a = nist_p192_a,
  28. .b = nist_p192_b
  29. };
  30. /* NIST P-256: a = p - 3 */
  31. static u64 nist_p256_g_x[] = { 0xF4A13945D898C296ull, 0x77037D812DEB33A0ull,
  32. 0xF8BCE6E563A440F2ull, 0x6B17D1F2E12C4247ull };
  33. static u64 nist_p256_g_y[] = { 0xCBB6406837BF51F5ull, 0x2BCE33576B315ECEull,
  34. 0x8EE7EB4A7C0F9E16ull, 0x4FE342E2FE1A7F9Bull };
  35. static u64 nist_p256_p[] = { 0xFFFFFFFFFFFFFFFFull, 0x00000000FFFFFFFFull,
  36. 0x0000000000000000ull, 0xFFFFFFFF00000001ull };
  37. static u64 nist_p256_n[] = { 0xF3B9CAC2FC632551ull, 0xBCE6FAADA7179E84ull,
  38. 0xFFFFFFFFFFFFFFFFull, 0xFFFFFFFF00000000ull };
  39. static u64 nist_p256_a[] = { 0xFFFFFFFFFFFFFFFCull, 0x00000000FFFFFFFFull,
  40. 0x0000000000000000ull, 0xFFFFFFFF00000001ull };
  41. static u64 nist_p256_b[] = { 0x3BCE3C3E27D2604Bull, 0x651D06B0CC53B0F6ull,
  42. 0xB3EBBD55769886BCull, 0x5AC635D8AA3A93E7ull };
  43. static struct ecc_curve nist_p256 = {
  44. .name = "nist_256",
  45. .nbits = 256,
  46. .g = {
  47. .x = nist_p256_g_x,
  48. .y = nist_p256_g_y,
  49. .ndigits = 4,
  50. },
  51. .p = nist_p256_p,
  52. .n = nist_p256_n,
  53. .a = nist_p256_a,
  54. .b = nist_p256_b
  55. };
  56. /* NIST P-384 */
  57. static u64 nist_p384_g_x[] = { 0x3A545E3872760AB7ull, 0x5502F25DBF55296Cull,
  58. 0x59F741E082542A38ull, 0x6E1D3B628BA79B98ull,
  59. 0x8Eb1C71EF320AD74ull, 0xAA87CA22BE8B0537ull };
  60. static u64 nist_p384_g_y[] = { 0x7A431D7C90EA0E5Full, 0x0A60B1CE1D7E819Dull,
  61. 0xE9DA3113B5F0B8C0ull, 0xF8F41DBD289A147Cull,
  62. 0x5D9E98BF9292DC29ull, 0x3617DE4A96262C6Full };
  63. static u64 nist_p384_p[] = { 0x00000000FFFFFFFFull, 0xFFFFFFFF00000000ull,
  64. 0xFFFFFFFFFFFFFFFEull, 0xFFFFFFFFFFFFFFFFull,
  65. 0xFFFFFFFFFFFFFFFFull, 0xFFFFFFFFFFFFFFFFull };
  66. static u64 nist_p384_n[] = { 0xECEC196ACCC52973ull, 0x581A0DB248B0A77Aull,
  67. 0xC7634D81F4372DDFull, 0xFFFFFFFFFFFFFFFFull,
  68. 0xFFFFFFFFFFFFFFFFull, 0xFFFFFFFFFFFFFFFFull };
  69. static u64 nist_p384_a[] = { 0x00000000FFFFFFFCull, 0xFFFFFFFF00000000ull,
  70. 0xFFFFFFFFFFFFFFFEull, 0xFFFFFFFFFFFFFFFFull,
  71. 0xFFFFFFFFFFFFFFFFull, 0xFFFFFFFFFFFFFFFFull };
  72. static u64 nist_p384_b[] = { 0x2a85c8edd3ec2aefull, 0xc656398d8a2ed19dull,
  73. 0x0314088f5013875aull, 0x181d9c6efe814112ull,
  74. 0x988e056be3f82d19ull, 0xb3312fa7e23ee7e4ull };
  75. static struct ecc_curve nist_p384 = {
  76. .name = "nist_384",
  77. .nbits = 384,
  78. .g = {
  79. .x = nist_p384_g_x,
  80. .y = nist_p384_g_y,
  81. .ndigits = 6,
  82. },
  83. .p = nist_p384_p,
  84. .n = nist_p384_n,
  85. .a = nist_p384_a,
  86. .b = nist_p384_b
  87. };
  88. /* NIST P-521 */
  89. static u64 nist_p521_g_x[] = { 0xf97e7e31c2e5bd66ull, 0x3348b3c1856a429bull,
  90. 0xfe1dc127a2ffa8deull, 0xa14b5e77efe75928ull,
  91. 0xf828af606b4d3dbaull, 0x9c648139053fb521ull,
  92. 0x9e3ecb662395b442ull, 0x858e06b70404e9cdull,
  93. 0xc6ull };
  94. static u64 nist_p521_g_y[] = { 0x88be94769fd16650ull, 0x353c7086a272c240ull,
  95. 0xc550b9013fad0761ull, 0x97ee72995ef42640ull,
  96. 0x17afbd17273e662cull, 0x98f54449579b4468ull,
  97. 0x5c8a5fb42c7d1bd9ull, 0x39296a789a3bc004ull,
  98. 0x118ull };
  99. static u64 nist_p521_p[] = { 0xffffffffffffffffull, 0xffffffffffffffffull,
  100. 0xffffffffffffffffull, 0xffffffffffffffffull,
  101. 0xffffffffffffffffull, 0xffffffffffffffffull,
  102. 0xffffffffffffffffull, 0xffffffffffffffffull,
  103. 0x1ffull };
  104. static u64 nist_p521_n[] = { 0xbb6fb71e91386409ull, 0x3bb5c9b8899c47aeull,
  105. 0x7fcc0148f709a5d0ull, 0x51868783bf2f966bull,
  106. 0xfffffffffffffffaull, 0xffffffffffffffffull,
  107. 0xffffffffffffffffull, 0xffffffffffffffffull,
  108. 0x1ffull };
  109. static u64 nist_p521_a[] = { 0xfffffffffffffffcull, 0xffffffffffffffffull,
  110. 0xffffffffffffffffull, 0xffffffffffffffffull,
  111. 0xffffffffffffffffull, 0xffffffffffffffffull,
  112. 0xffffffffffffffffull, 0xffffffffffffffffull,
  113. 0x1ffull };
  114. static u64 nist_p521_b[] = { 0xef451fd46b503f00ull, 0x3573df883d2c34f1ull,
  115. 0x1652c0bd3bb1bf07ull, 0x56193951ec7e937bull,
  116. 0xb8b489918ef109e1ull, 0xa2da725b99b315f3ull,
  117. 0x929a21a0b68540eeull, 0x953eb9618e1c9a1full,
  118. 0x051ull };
  119. static struct ecc_curve nist_p521 = {
  120. .name = "nist_521",
  121. .nbits = 521,
  122. .g = {
  123. .x = nist_p521_g_x,
  124. .y = nist_p521_g_y,
  125. .ndigits = 9,
  126. },
  127. .p = nist_p521_p,
  128. .n = nist_p521_n,
  129. .a = nist_p521_a,
  130. .b = nist_p521_b
  131. };
  132. /* curve25519 */
  133. static u64 curve25519_g_x[] = { 0x0000000000000009, 0x0000000000000000,
  134. 0x0000000000000000, 0x0000000000000000 };
  135. static u64 curve25519_p[] = { 0xffffffffffffffed, 0xffffffffffffffff,
  136. 0xffffffffffffffff, 0x7fffffffffffffff };
  137. static u64 curve25519_a[] = { 0x000000000001DB41, 0x0000000000000000,
  138. 0x0000000000000000, 0x0000000000000000 };
  139. static const struct ecc_curve ecc_25519 = {
  140. .name = "curve25519",
  141. .nbits = 255,
  142. .g = {
  143. .x = curve25519_g_x,
  144. .ndigits = 4,
  145. },
  146. .p = curve25519_p,
  147. .a = curve25519_a,
  148. };
  149. #endif